Re: Firewall problems with Samba



On Fri, 16 Mar 2007 00:31:06 +0100, Eric wrote:

Will Honea wrote:
I've got 4 boxes running 10.2 and I'm trying to get Samba going so that I
can use it with a collection of Win machines and one OS/2 server. Here's
where I am: All the non-Linux boxes see each other and their shares.
They also see the Linux boxes and the shares are usable. Problem is that
none of the Linux boxes can see anything UNLESS I drop the firewall. Drop
the firewall and all is well, so the problem has to be in the firewall
somehow.

I've tried the Yast Samba setup routines and each individual box works as
expected after exiting the Yast Samba setup - until I try use Samba on
another Linux box. At that point, all 4 Linux boxes go right back to the
hermit mode. I still have access to them from the non-Linus boxes but not
between them.

I've tried everything I could find with the firewall - opened ports 135,
137:139, and 445 for both tcp and udp but nothing seems to stick. Anybody
got a quick solution for this?


i assume, each linux box has its own firewall, right? Why? You are
talking about a private net, aren't you?

If they are located behind one central firewall, check the firewall.

Eric

You make an excellent point here - the whole system is behind a so-so
firewall in the DSL router/AP, so there is some justification to using an
open network. As it turns out for the test setup, I do have all 4 openSUSE
boxes running individual firewalls. I suppose the way to do it is to pick
one as router and use it as a secondary firewall with all the others
behind that. That's what happens when you just throw a test bed together...

--
Will Honea <whonea@xxxxxxxxx>
.



Relevant Pages

  • Re: Suggest firewall for Win98se+ICS(dialup)+NAV
    ... to go out and buy all new boxes capable of running Win 2000 Pro or Win XP ... |> either disable the firewall or otherwise change its settings. ... vulnerability in a small business environment is from the inside, ... Any disgruntled Win 98 SE user can obviously walk in and install something ...
    (comp.security.firewalls)
  • Re: Firewall problems with Samba
    ... They also see the Linux boxes and the shares are usable. ... none of the Linux boxes can see anything UNLESS I drop the firewall. ... I've tried the Yast Samba setup routines and each individual box works as ...
    (alt.os.linux.suse)
  • Re: Firewall problems with Samba
    ... All the non-Linux boxes see each other and their shares. ... They also see the Linux boxes and the shares are usable. ... none of the Linux boxes can see anything UNLESS I drop the firewall. ...
    (alt.os.linux.suse)
  • Re: [fw-wiz] segmentation of DMZs
    ... public as well as private boxes. ... In fact, separate zones can make some things easier, for instance when ... as they pass through the firewall, so that the response always passes ... "open ports x,y,z and 1024-65535 in both directions", etc. ...
    (Firewall-Wizards)
  • Fwd: Re: [Full-Disclosure] Microsoft urging users to buy Harware Firewalls
    ... In my exprerience, these boxes just work. ... So why should we have to stick a firewall in front of a machine ... NAT boxes and hardware firewalls are tools. ... I myself put my windows boxes ...
    (Full-Disclosure)